root@vps117765:/etc/postfix# cd ~
root@vps117765:~# /usr/lib/ssl/misc/CA.pl -newca
CA certificate filename (or enter to create)
Making CA certificate ...
Generating a 2048 bit RSA private key
...+++
.................................................................................................+++
writing new private key to './demoCA/private/cakey.pem'
Enter PEM pass phrase:
Verifying - Enter PEM pass phrase:
-----
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [CH]:
State or Province Name (full name) [Zurich]:
Locality Name (eg, city) []:
Organization Name (eg, company) [Datalogic Ltd]:
Organizational Unit Name (eg, section) []:
Common Name (e.g. server FQDN or YOUR name) []:donald-trump.li
info@fdirp.eu []:
Please enter the following 'extra' attributes
to be sent with your certificate request
A challenge password []:
An optional company name []:
Using configuration from /usr/lib/ssl/openssl.cnf
Enter pass phrase for ./demoCA/private/cakey.pem:
Check that the request matches the signature
Signature ok
Certificate Details:
Serial Number: 17986385784766514503 (0xf99c7a934624c547)
Validity
Not Before: Mar 3 06:16:02 2017 GMT
Not After : Mar 2 06:16:02 2020 GMT
Subject:
countryName = CH
stateOrProvinceName = Zurich
organizationName = Datalogic Ltd
commonName = donald-trump.li
X509v3 extensions:
X509v3 Subject Key Identifier:
36:9F:C3:75:A7:B5:ED:79:CC:FC:6A:B4:1B:08:F0:42:E3:37:BB:7D
X509v3 Authority Key Identifier:
keyid:36:9F:C3:75:A7:B5:ED:79:CC:FC:6A:B4:1B:08:F0:42:E3:37:BB:7D
X509v3 Basic Constraints:
CA:TRUE
Certificate is to be certified until Mar 2 06:16:02 2020 GMT (1095 days)
Write out database with 1 new entries
Data Base Updated